Blog
DeadLock Ransomware Stores C2 on Polygon Blockchain — 96 Victims Across Four Continents, No Takedown Path
DeadLock ransomware embeds command-and-control inside Polygon smart contracts that law enforcement cannot seize — 96 victims across IT, manufacturing, and logistics sectors across four continents.
Read More →CVE-2026-20349 (CVSS 8.6): Cisco ASA and FTD VPN Flaw Under Active Attack — CISA Deadline Is Tomorrow
Unauthenticated attackers are crashing Cisco ASA and FTD firewalls via CVE-2026-20349. CISA’s patch deadline is August 14. No workarounds exist — patch now.
Read More →CVE-2026-62815 (CVSS 9.8): Microsoft QUIC’s Use-After-Free Flaw Opens Every Windows Server to Remote Code Execution — No Password Required
A CVSS 9.8 use-after-free flaw in Microsoft QUIC lets unauthenticated attackers execute code remotely on Windows 11 and Windows Server 2022/2025 with no user interaction. Patch immediately or block UDP/443…
Read More →CVE-2026-68820 (CVSS 7.0): Lazarus Group Weaponises Windows WinSock Kernel Zero-Day to Deploy FudModule Rootkit — August 2026 Patch Tuesday
North Korea's Lazarus Group exploited CVE-2026-68820, a Windows WinSock kernel zero-day, in Operation Dream Job targeting Indian defence firms. Here is what IT leaders must do now.
Read More →CVE-2025-24472 (CVSS 8.1): Gunra RaaS Chains Your FortiOS VPN Into a Ransomware On-Ramp — FBI, CISA, NSA and Seoul Issue Red Alert
FBI, CISA & South Korea warn Gunra ransomware exploits CVE-2025-24472 (CVSS 8.1) in FortiOS to breach governments and critical infrastructure. Patch to FortiOS 7.0.17 now.
Read More →CVE-2026-16812 (CVSS 10.0): Arista VeloCloud Zero-Day Hands Attackers Root Access to Your Entire SD-WAN Fabric — Patch Now
CVE-2026-16812 is a CVSS 10.0 zero-day in Arista VeloCloud Orchestrator. Actively exploited, CISA KEV. Patch to 5.2.3.14, 6.1.3.4, 6.4.2.4 or 7.0.0.1 now to protect your SD-WAN.
Read More →Storm-2603’s SharePoint Killchain: CVE-2026-55040 + CVE-2026-56164 Turn a Single HTTP Request Into Full Domain Compromise — Patch Before Tomorrow
Storm-2603 is weaponising a two-CVE SharePoint exploit chain — CVE-2026-55040 (CVSS 9.1) and CVE-2026-56164 (CVSS 9.8) — for unauthenticated domain takeover. The RCE patch lands on August Patch Tuesday tomorrow.…
Read More →CVE-2026-20272 (CVSS 9.8) + Three CVSS 9.9 Bugs: Cisco’s August 2026 Hardening Drop Puts Every IOS XE and SD-WAN Deployment at Risk
Cisco's August 2026 hardening release patches 12 flaws across IOS XE and Catalyst SD-WAN, including CVE-2026-20272 (CVSS 9.8) unauthenticated command injection and three CVSS 9.9 SD-WAN Manager bugs. No workarounds…
Read More →CVE-2026-8037 (CVSS 9.6): Pre-Auth Root RCE Hits Kemp LoadMaster — 792 Active Attacks as CISA Deadline Lands Tomorrow
CVE-2026-8037: Pre-auth CVSS 9.6 command injection in Progress Kemp LoadMaster enables root RCE. 792 active attacks from 65 IPs across 18 countries. CISA KEV added August 7. Patch by August…
Read More →Metabase CVSS 10.0: One Unauthenticated API Call Hands Attackers Admin Keys to Your Entire Analytics Stack
A CVSS 10.0 SQL injection zero-day in Metabase's password-reset API grants unauthenticated admin access — no credentials required. Framework, Tally, and LexisNexis confirm data-theft breaches. Patch immediately or block the…
Read More →